Legal

GDPR

The GDPR (General Data Protection Regulation) is in effect in the European Union. This law regulates the freedom of individuals to control how their personal data is used. According to the European Commission's resource site on the GDPR, personal data is "any information that relates to an identified or identifiable living individual. Different pieces of information, which collected together can lead to the identification of a particular person, also constitute personal data." Companies themselves are not protected by the law, but the personal information of the people working at a company is.

For information about how GDPR applies to this website and other privacy-related information, please see our Privacy Policy.

Syspeace accounts and personal data

Everything marked with @ below is personal data, either directly or by inference, assuming the Syspeace account is owned by an individual rather than a company or other legal person.

Every Syspeace user needs to register a Syspeace account, providing these details:

  • A company name or a person name.
  • @ An email address, used to send the account license key and for future communications.
  • @ A password.

This information is used to implement the Syspeace license model. We do not sell or share this information with any third party.

When Syspeace has been set up, it sends the following information to the Syspeace license server when validating its license:

  • @ The account license key.
  • @ The name and IP address of the server running Syspeace.
  • The version of the Syspeace software, the size of the local database, and the version of Windows.

This information is used to implement the Syspeace license model (which requires being able to tell servers apart) and to facilitate troubleshooting and support. We do not sell or share this information with any third party. Aggregate information is also used internally to inform future development decisions.

In addition, when a block is registered, the following information is sent:

  • The blocked IP address and the name of the server running Syspeace.
  • @ A traceroute to the affected IP address (only before Syspeace 3.1.5).

This information is used to provide the source material for the Global Blocklist. We do not sell or share this information with any third party. The resulting Global Blocklist is constructed by aggregating information and does not contain the personal data of any customer. It is redistributed to every participating Syspeace user.

Use of Syspeace is conditioned on accepting the Syspeace EULA (End-User License Agreement), which gives consent for the collection of this information.

GDPR rights and mechanisms

GDPR defines personal data as applying to living individuals. The following does not apply to Syspeace accounts associated with companies rather than individuals. A Syspeace account used by a company, but where the account's name is a person's name rather than a company name, is of course free to request that the company name be used instead.

The GDPR allows for the right to know about the personal data on file, to correct or update it, to remove it (sometimes referred to as "the right to be forgotten"), and to export it.

You can ask us to provide the name and email address currently on record, or ask us to edit them. When changing the email address, for security reasons we require confirmation sent from the current email address on file. To receive a copy of the personal data on file for a Syspeace account, please contact us with an email from that account's email address.

You can also ask us to remove the personal data we have on file. In our case, this requires shutting down the Syspeace account, since after removing or blanking out everything potentially considered personal data, we would not be able to maintain the Syspeace license model.

Emails and purchases

From time to time, we may send emails to the Syspeace account email address. These can be opted out of by using the unsubscribe link in any such email, or by updating mailing preferences on the Syspeace license portal.

During license purchases, we collect address and contact information that we are legally required to collect for auditing reasons, and to send the receipt email detailing the purchase. This information may be shared with our payment processor as required to facilitate payment.